OSINT cluster research: IntelOwl artifacts, playbooks, pivots, and analysis lifecycle #176
Labels
No labels
bug
design
documentation
duplicate
enhancement
good first issue
help wanted
invalid
question
research
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
nsaspy/starintel-auto-research#176
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Goal
Deeply research IntelOwl for reusable investigation and enrichment architecture. Extract the lifecycle and composition semantics, not its Python/Django implementation or every analyzer.
Architecture rule
Use IntelOwl to inform an Investigation/Analysis domain-server cluster and shared StarLang orchestration. Source-specific enrichment remains owned by the proper domain server.
Feature surface to verify
StarIntel target
Research whether StarIntel should standardize these shared semantics across domain servers:
These should be StarLang/runtime concepts where possible, not IntelOwl compatibility layers.
Implementation preference
StarLang → extend StarLang → Common Lisp → Python only as last resort.
Output gate
Stage findings in
roam/internal/OSINT-TOOLS-LEDGER.organd this issue. Do not update ARARD/ARADR conclusions until explicit human instruction to add research.